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METHOD AND APPARATUS FOR DATA RECOVERY 

CROSS-REFERENCE TO RELATED APPLICATION(S) 

This application claims the benefit of U.S. Provisional Patent Application Serial 
Number 60/257,536 filed December 20, 2000. 

TECHNICAL FIELD 

The present invention relates generally to computer systems and more specifically to 
data storage devices. 

BACKGROUND ART 

Modern storage devices are susceptible to data loss or corruption in the event of a 
power interruption or loss during operation. One approach in minimizing or preventing data 
loss in such systems is to employ non-volatile memory, such as flash memory. However, 
employing non-volatile memory does not entirely eliminate the possibility of data loss or 
corruption caused by power interruptions. The storage path in the storage device is not 
completely non-volatile (i.e., data is moved from one location to another and during transit 
may be stored in non- volatile buffers). Moreover, write operations may be interrupted while 
in progress, corrupting the data being written or the data being replaced. When such an event 
occurs to device configuration data, such as remapping, wear-leveling, and directory 
information, the result can be catastrophic since large amounts, if not all, of the data stored in 
the device may not be recoverable upon subsequent power-up and re-initialization. 

Accordingly, a need exists for an apparatus and method of data recoverability that 
avoids or minimizes data corruption or loss, including corruption or loss of configuration data 
or data selected for storage (host data) in a storage device during a power interruption. 

DISCLOSURE OF THE INVENTION 

The present invention includes a method of using base block copies to define the 
location of selected data structures used for file system management. It uses at least two of 
the base block copies to provide redundancy so that in the event one of the copies cannot be 
located or verified, the other copy can be used to rebuild the defective base block copy. Upon 
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rebuilding the copy, one of the copies is used as the primary table to find the other file 
management structures, such as a recovery, control, address translation, remapping and wear- 
leveling tables and the like. 

The present invention also includes a method of writing to each base block copy so 
5 that in the event of power interruption at worst only one of the copies can be corrupted, such 
as when the interruption occurs during a write to one of the copies, and the storage device can 
differentiate which copy has the most recent data. 

In a further embodiment, the present invention also includes a method for preserving 
data stored in the file management structures even when a write transaction being performed 

10 on one of the structures is interrupted. The present invention uses a pre-erased recovery block 
to ensure the integrity of data stored in the file management structures by writing first to the 
recovery block prior to writing to the targeted file structure. In case of power loss in the 

;= y middle of a write to flash memory, the invention uses the pre-write recovery block to recreate 

11 the intended state of the updated flash memory block. If power loss occurs during a write 
iT5 operation to the recovery block, the flash memory to be written into is still in its uncorrupted 

prior state. If no power loss occurs, then the recovery block is updated and the scheduled 
i:! write to the flash memory is completed. Moreover, the recovery block is always pre-erased 
i=i before usage and the original write/update being performed before power loss will be tried 
"ll again in the course of normal firmware processing when the E-Disk comes up again. 
;20 Currently, this data recoverability feature applies to all structures used for controlling 

memory functions, such as bad block remapping, wear leveling, and the like. By providing a 
recovery block, caching host data, and writing critical information to the recover block prior 
to writing the data to a memory store, such as a flash device coupled to a direct-memory 
access (DMA) engine can recover data that might have otherwise been lost in the event of a 
25 power interruption is preserved. Preferably, one recovery block is used for every DMA 
engine used. 

The above and additional advantages of the present invention will become apparent to 
those skilled in the art from a reading of the following detailed description when taken in 
conjunction with the accompanying drawings. 

30 BRIEF DESCRIPTION OF THE DRAWINGS 

FIG. 1 is a block diagram describing the composition of the two base block copies of 
the present invention; 
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FIG. 2 is a process describing the data recoverability features of the present invention 
that are implemented during its start-up routine; 

FIG. 3 is a further embodiment of the present invention that may be used to preserve 
or render any corrupted data in the data structures recoverable; 
5 FIG. 4 is a process flow describing a data recoverability/preservation method suitable 

for use with storage devices that use the recovery block as disclosed in FIG. 3 in accordance 
with another embodiment of the present invention; 

FIG. 5 is a block diagram of a recovery block in accordance with further embodiment 
of the present invention; 

10 FIG. 6 is a process flow describing a method of preserving selected data for recovery 
in the event of a power interruption or loss in accordance with another embodiment of the 

]T% present invention; 

FIG. 7 is a process flow describing a method of determining whether a recovery block 

11 contains recovery data in accordance with an embodiment of the present invention; 

IS FIG. 8 is a process flowchart describing a method of verifying recovery data in 

; ri 1 accordance with another embodiment of the present invention; and 

Cj FIG. 9 is a block diagram of a storage device with the recovery features of the present 

ni invention. 

uL BEST MODE FOR CARRYING OUT THE INVENTION 

20 Referring now to FIG. 1, the present invention is used with a storage device and 

maintains two copies of location data inside a non-volatile memory 10, which are referred to 
as a first base block copy 12 and a second base block copy 14 and each respectively 
corresponding to device configuration-related data. Each base block copy includes a plurality 
of copy pointers PtrO through PtrN 16 and 18 respectively, which point to the base block and 

25 other storage device structures. The contents of a base block copy and the storage device 
structures form part of the "file system" of the storage device 8. Hence, a base block copy 
enables the storage device 8 to determine where the file system is located in the storage device 
8. The device structures may in turn hold pointers to other device structures (such as remap 
and wear-leveling tables), configuration data, and/or recovery information. 

30 Each base block copy 12 and 14 also includes respective block identifiers 20 and 22, 

respective sequence numbers 24 and 26, respective copy pointers 28 and 30, and respective 
checksums 32 and 34. Block identifiers 20 and 22 are simply labels identifying their 
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respective block of data as a base block copy and are referred to herein as "footprints". This 
permits the storage device 8 to search non-volatile memory 10 for a base block copy during 
start-up. Sequence numbers 24 and 26 are incremented each time their respective base block 
copy is updated, representing the number of times a base block copy has been updated with 
5 new information. The copy pointers 28 and 30 designate the location of another base block 
copy. In the example shown in FIG. 1, two base block copies 12 and 14 are used with first 
copy pointer 28 pointing to second base block copy 14 and second copy pointer 30 pointing to 
first base block copy 12. 

Having more than one copy of a base block provides redundancy, thereby rendering 

10 the information held in a base block recoverable in the event of data corruption (either loss or 
scrambling) caused either by an inherent defect in non-volatile memory 10, a power 

[% interruption or loss, or equivalent event. Prior to shipping the storage device 8, the device is 
i ^ configured for use by writing a copy of one of the base blocks 12 or 14 to the first defect-free 
i|) ("good") block available in the non-volatile memory 10. The other copy is then written in 
' : 15 another location in non- volatile memory 10 and their respective copy pointers 28 and 30 
updated so that they point to the other copy. A first checksum 32 is then generated for first 
q base block copy 12 and written into a defined location in first base block copy 12. Then a 
■~- 3 first sequence number 24 is generated and stored in first base block copy 12. After this is 

11 accomplished, a second checksum 34 is generated for the second base block copy 14 and 
20 saved therein. A second sequence number 26 is also generated and then stored in the second 

base block copy 14. Sequence numbers 24 and 26 should be the same since both copies have 
been updated the same number of times. The storage device 8 will check the sequence 
numbers of both base blocks copies 12 and 14 for a match prior to using a base block copy. If 
the sequence numbers do not match, the storage device 8 will use the base block copy having 

25 the latest sequence number. 

During operation, the storage device 8 will generate a new sequence number each time 
a base block copy is updated. After generating the sequence number and saving the number 
in the base block copy in use, the other base block copy is updated with the same information, 
including the same sequence number. This preserves data in the event of corruption in two 

30 ways. If power is interrupted or lost during the update of the base block copy in use and the 
base block copy update is in progress but not completed, the other base block copy may be 
used instead of the corrupted base block to startup the storage device 8 and to recover the 
corrupted base block copy. 
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If power interruption occurs after the successful update of the base block copy in use 
but before the completion of the update of the base block copy not in use, the base block 
copies will have difference sequence numbers. The base block copy that was successfully 
updated prior to the power interruption will have a sequence number that is later than the 
5 sequence number of the base block copy that was in the progress of being updated. Assuming 
the interruption did not render the base block copy with the latest sequence number 
unreadable, the storage device 8 will select the base block copy with the latest sequence 
number since it was the copy with the latest update. 

Referring now to FIG. 2, therein is shown a process describing the data recoverability 
10 of the present invention that is implemented during its start-up routine. 

Upon start-up and after its initial configuration, the storage device, through firmware, 
Tj attempts to locate a base block copy in a Locate Base Block Copy block 100 that it can read 
^1 successfully from non-volatile memory. If a base block copy is not found in a Found? block 
;|i 102, the firmware triggers an exception routine in an Exception block 104, such as triggering 
15 an external signal source to indicate an error. 

Otherwise, a checksum is calculated using the contents of the base block copy that 
□ were successfully located and read in a Calculate Checksum and Compare with an Original 
\%\ block 106. The calculated checksum is then compared with the stored checksum in the 
-I Calculate Checksum and Compare with an Original block 106 and if they match in a Match? 
ZD block 108, the copy pointer for the base block is used to find the other base block copy in a 
Find Other base Block Copy block 112. If they do not match in the Match? block 108, an 
exception routine in an Exception block 1 10 is triggered. 

If the other base block copy is not found or read successfully in the Found? block 114, 
then the storage device attempts to rebuild the other base block copy in a Rebuild Using other 
25 Base Block Copy block 118. Otherwise, a checksum is calculated and compared with the 
checksum stored in the other base block copy in a Calculate Checksum & Compare with an 
Original block 116. If they do not match in a Match? block 120, the storage device attempts 
to rebuild in the Rebuild Using Other Base Block Copy block 118. If the calculated 
checksum matches in the Match? block 120, then the sequence numbers of both base block 
30 copies are compared in a Compare Sequence Numbers block 122. If both sequence numbers 
match in a Match? block 124, then the non-rebuilt base block copy is used in a Non-rebuilt 
Base Block block 126 to find the remaining operating system structures. In a preferred 
embodiment, the non-rebuilt base block found is used. 



5 



Docket No: 23-002 



Both copies are then marked as known good blocks in a Mark Both Copies as Good 
block 128. The base block copy that is not used is updated whenever the pointers are updated 
in the base block copy that is in use, providing two updated base block copies that may be 
relied upon should one of the copies become corrupted (not shown). 
5 If the sequence numbers do not match in the Match? block 124, the storage device 

uses the base block copy having the latest sequence number to recover the data in the other 
base block copy in the Use base Block Copy with latest Sequence Number and Rebuild the 
Base Block Copy Having the Oldest Sequence Number block 130 and upon doing so 
successfully, marks both base block copies as known good base blocks in the Mark Both 

1 0 Copies as Good block 128. 

The ability to verify or recover data held in a base block copy not only preserves the 
integrity of that data but also preserves the integrity of data contained in structures that are 
pointed to by the data preserved in a base block copy. For example, the present invention is 

11 well suited for use in an operating system that uses multi-level data structures that are 
p arranged in a tree architecture. The root structure functions as a directory to structures below 
;=H it and in turn, the structures below the root structure may function as directories to other 
□ structures, or if the structures do not have any structures below it, may hold data instead. 

ill Employing a tree structure comprised of multi-level directory structures provides 

^| many advantages. It permits the structures to be moved in memory, providing wear-leveling 
2Q and remapping flexibility. It also can be inherently sized to the minimum write size 
granularities imposed by certain memories. These advantages are well suited for memory 
stores that are comprised of flash memory because flash memory is write-cycle limited and 
has a minimum write size granularity fixed at the block rather than the byte level. Hence, 
each directory structure can be defined to have a size of one block, facilitating the transfer of 
25 the directory structures to different block locations in the flash memory when needed such as 
when providing wear-leveling and remapping functionality to the storage device. 

FIG. 2 shows that although a tree structure has the disadvantage of failing 
catastrophically in the event that the data in the root data structure is corrupted, using the base 
block copy data recoverability and preservation method disclosed above provides data 
30 recoverability and preservation of the root data structure. Only one base block copy is used as 
the root data structure but the other base block copy operates as a recovery copy should the 
base block copy used as a root data structure fail. 
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Referring now to FIG. 3, therein is shown a further embodiment of the present 
invention that may be used to preserve or render the data in corrupted data structures 
recoverable. The top level, or Root Level 200, is where a Known Good Base Block Copy 200 
is stored. The present invention uses a recovery structure at the level below the Root Level 
5 300, hereinafter referred to as the First level 202. The recovery structure renders the data 
structures below the Root Level 200 recoverable in the event of a power loss or interruption. 
Thus, besides having a data recovery/preservation solution for the Root Level 200, the present 
invention may also include a data recovery/preservation solution for data held by structures 
below the root structure. 

10 To minimize confusion, only a single base block copy, a Known Good Base Block 

Copy 206, is shown in FIG. 3 although more than one copy may be used in the manner 
^ disclosed herein to obtain data recoverability functionality. When two base block copies are 
; ! - used, either copy may be used as the root directory as long as the selected copy has been 
IS verified as containing valid data as disclosed in one embodiment of the present invention 
above. In addition, data stored in each base block copy that are used for recovery, such as 
; J ' checksum, footprint, and the like, are not included in FIG. 3 to further minimize obscuring the 
i : I present invention. 

'{% \ The Known Good Base Block Copy 206 contains a Recovery Block Pointer 208 and a 

Control Block Pointer 210 that enable the storage device's firmware to determine the current 

20 locations of a Recovery Block 214 and a Control Block 212, respectively. Each structure has 
a plurality of pages, Control Block Page 0 through N designated as 216-0 through 216-N, and 
Recovery Block Page 0 through N designated as 222-0 through 222-N with each page having 
a copy of its respective block's physical block address (PBA), Control Block Pointer 218 and 
Recovery Block Pointer 220 respectively. This permits the firmware to validate the contents 

25 of each page by comparing the PBA in the page with the structure's pointer in the base block 
copy used as root directory. Additional, error detection solutions may be used on a page-by- 
page basis, such as an Error Correcting Code (ECC) and the like. 

Referring now to FIG. 4, therein is shown a process flow describing a data 
recoverability/preservation method suitable for use with storage devices that use the recovery 

30 block as disclosed in FIG. 3. For each scheduled write operation targeted for a selected 
directory structure, the data to be written will first be written to the recovery block in a first 
block 300 and verified in a second block 302. The selected directory structure may be any of 
the structures that are used by the storage device as part of its operating system and that is to 
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be updated by the scheduled write. For example, referring to FIG. 2, the selected directory 
structure may be the control block 212 or any one of the other directory structures shown. 

Upon verification of the write operation to the recovery block in the second block 302, 
the scheduled write is then performed on the selected directory structure in a third block 304. 
5 Upon completion of the write in the third block 304, the write is verified in a fourth block 
306. The recovery block is then erased in a fifth block 308 and the process is repeated. 
Should a power interruption occur, upon start-up and initialization the present invention 
checks the recovery block for any valid recovery data and if so, enters a data recovery routine 
as will be described in FIG. 6. 
10 Referring now to FIG. 5, therein is shown a block diagram of a recovery flash memory 

block 400 in accordance with the preferred embodiment of the present invention. The 
q recovery flash memory block 400 is comprised of a plurality of flash memory block pages 
#2 402-0 through 402-n comprising a data portion 404 and a bookend portion 406. The size of 
[ *l the data portion 404 is determined by the flash memory block size that in turn is defined by 
115 the storage device's operating system and flash memory media. In one embodiment, the data 
jn portion 404 is 512 bytes in length and the bookend portion 406 is 16 bytes in length. The data 
L, portion 404 is intended to contain recovery data, while the bookend portion 406 is used to 
uj store a statistics data portion 408 and an ECC information portion 410. The statistics data 
^ portion 408 is preferably one byte in size and is used in combination with other statistics data 
20 portions 408 from other pages in the plurality of flash memory block pages 402-0 through 
402-n to form a statistics record 412 for the entire recovery flash memory block 400. 
Reserving one byte in every bookend for use as the statistics data portion 408 leaves 15 
available bytes, which are used to store the ECC information portion 410 for the page. 

Currently, there are three possible flash memory block sizes available although this is 
25 not intended to limit the present invention in any way. The current block sizes are: 4, 8 and 
16 Kilobytes (KB), respectively. The recovery flash memory block 400 shown in FIG. 5 is 
defined to have a size of 4KB. This permits seven (7) flash memory block pages 402-0 
through 402-6 to be stored in the recovery flash memory block 400. Obviously, the larger the 
size of the flash memory block page 402 used, the greater the number of flash memory block 
30 pages 402 for a given page size that may be stored within the recovery flash memory block 
400. For example, if the size of the recovery flash memory block 400 used is 8KB or 16KB, 
then the maximum number of flash memory block pages 402-0 through 402-n that can be 
defined for the recovery flash memory block 400 is 15 or 31 pages, respectively. Moreover, a 
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greater number of flash memory block pages 402-0 through 402-n stored also increases the 
number of statistics data portions 408 that may be combined to form the statistics record 412 
for the entire recovery flash memory block 400. 

When writing to the recovery flash memory block 400 (or another directory structure), 
5 the data is written in block size increments. Data to be written is stored in the statistics data 
portion 408 of each page. In addition, the PBA of the recovery flash memory block 400 is 
written in the statistics data portion 408, and ECC information is written into the ECC 
information portion 410 of the bookend portion 406 that corresponds to the same flash 
memory block page 402-n of the statistics data portion 408 used to store the data that was 
10 used to generate the ECC information. 

When erasing the recovery flash memory block 400 (or another directory structure), 
j = j the statistics data portion 408 and the ECC information portion 410 are filled with predefined 
i jj values, such as "FF" (hex) and zeros, respectively. If these values are found in every statistics 
\ n data portion 408 and ECC information portion 410 defined in the recovery flash memory 
\V5 block 400, then the recovery flash memory block 400 will be treated as completely erased. 
Ul Referring now to FIG. 6, therein is shown a process flow describing a method or 

\*\ preserving selected data for recovery in the event of a power interruption or loss in 
\i\ accordance with another embodiment of the present invention. 

=J The device enters into an initialization routine, which includes an attempt to locate the 

20 recovery block in the Recovery Block Available? block 500. If the recovery block is located, 
the device will determine whether it contains valid recovery data in the Recovery Data 
Available? block 502. 

If the recovery block does not contain valid recovery data, then the storage device 
loads configuration data stored in flash memory or equivalent non-volatile memory to a 

25 second memory location for working purposes in the From Flash, Load Directory Structures 
into Working Memory block 510, which is preferably in the form of DRAM. The storage 
device then proceeds to normal operation by exiting the routine in an Exit Recovery Routine 
block 512. If the recovery block contains recovery data in the Recovery Data Available? 
block 502, the storage device attempts to verify the recovery data in the Valid Recovery Data? 

30 block 506 by building flash memory statistics from the data found and verifying the data 
contained therein. If verification is not successful, configuration data, which is stored in non- 
volatile memory such as flash memory, rather than the recovery data is written to the second 
memory location in the From Flash, Load Directory Structures into Working Memory block 
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510 and the storage device enters normal operation by exiting the recovery routine in an Exit 
Recovery Routine block 512. 

If valid recovery data is found in the Valid Recovery Data? block 506, the storage 
device loads recovery block data to the corresponding directory structures stored in flash 
5 memory, or equivalent non-volatile memory in the Load Recovery Block Data to 
Corresponding Directory Structures Stored in Flash 508. The storage device then loads the 
configuration data stored in the flash memory to a second memory location for working 
purposes, which is preferably in the form of DRAM, in the From Flash, Load Directory 
Structures into Working Memory block 510. The storage device then proceeds to normal 
1 0 operation by exiting the recovery routine in the Exit Recovery Routine block 512. 

Referring now to FIG. 7, therein is shown a process flowchart describing a method of 
Q determining whether a recovery block contains recovery data in accordance with another 
ijjl embodiment of the present invention. Two actions are taken to make this determination. 

First, every statistics data portion defined in every bookend in the flash memory block is 
111 checked to determine whether it contains the value "FF" or an equivalent predefined value in 
in the Each Flash Blk Statistics Portion Contains the Predefined Value? block 600, If so, the 
;L, ECC data in each bookend is used to check for an ECC error in the ECC Error? block 602. If 
UJ no error is found, then the recovery block is deemed to have received recovery data in the 

Recovery Block Contains Recovery Data block 606. 
2& If at least one statistics data portion does not contain an "FF" value, then the directory 

structures stored in flash memory are loaded into working memory in a Recovery Block Not 
Properly Erased and thus, Does Not Contain Recovery Data block 604 since this condition 
indicates that the recovery block was not completely erased and in effect, was not properly 
updated with recovery data. 
25 Similarly, if at least one ECC field does results in an ECC error, then the write to the 

recovery block was not properly completed, and is deemed to have corrupted the recovery 
data in the recovery block in the Recovery Block Not Properly Erased and thus, Does Not 
Contain Recovery Data block 604. 

Referring now to FIG. 8, therein is shown a flowchart describing a method of 
30 verifying recovery data in accordance with a further embodiment of the present invention. If 
recovery data is found in the recovery block, each page is verified by building the statistics 
record and combining every statistics data portion in the block shown by a Build Flash 
Statistics Record in Recovery Block block 702. The statistics record includes the logical 
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block address (LBA) of the recovery block, wear-leveling information, and the like. The 
LBA of the flash memory statistics record and the LBA in the root directory are compared in 
the LBA from Flash Statistics Record from recovery Block matches LBA in Root Dir? block 
704, and if the LBA does not correspond to the PBA of the recovery block, the recovery block 
5 data is considered invalid in a recovery data Deemed Invalid block 706. 

If the flash memory statistics record of the LBA and the LBA found in the root 
directory match, a flash memory statistics record for each directory structure is then built by 
combining each flash memory statistics portion in each bookend in a Build Flash Statistics 
Record in Directory Structure block 708. The LBA from the directory structure flash memory 

10 statistics record is then compared with the LBA in the root directory in the LBA in an LBA 
from Flash Statistics Record in each Directory Structure Matches the LBA in Root Dir? block 
710. If the LBA's match, the recovery data is deemed valid in the Recovery Data Deemed 

sjj Valid block 712. 

In both instances, the LBA address defined for the directory structures and the 

W recovery block are obtained from the root directory, which in the present invention is 

i jl provided by a base block copy. 
; Referring now to FIG. 9, therein is shown a block diagram of a storage device 800 

jifl having the data recovery features described herein. The storage device 800 is coupled to a 
,j host 802 through a peripheral interface 804, such as SCSI, Fibre Channel, ATA, IDE, and the 

20^ like, permitting the host 802 to perform storage operations on the storage device 800, such as 
write and read operations. The storage device 800 is shown having a Memory A 806, a 
Memory B 808, a system bus, a memory bus, a local processor 818 and associated circuitry. 
In addition, a Processor Circuit 824, a Local Processor Memory 822, a ROM 820, and their 
general interaction with the storage device 800 appear in the block diagram but are not 

25 described to avoid overcomplicating the herein disclosure. An example of the system 
architecture shown in FIG. 9 is described in U.S. patent number 5,822,251. In one 
embodiment, the Memory A 806 is comprised of at least one bank of NAND Flash memory 
810 and a flash memory buffer circuit 812, which is coupled to a memory controller, such as a 
DMA controller 814. The Memory A 806 is intended for use as the device's primary storage 

30 memory and more than one set may be used to increase capacity and/or performance. In one 
embodiment, one DMA controller is used for every set implemented. 

The Memory B 808 is preferably comprised of DRAM (or its equivalents, such as 
SDRAM, RDRAM, etc.) and is used as a read/write ("storage") cache to Memory A 806. The 
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Memory B 808 is controlled by at least one DMA memory controller (not shown) although 
more than one may be used to increase performance. Two DMA controllers (not shown) are 
used and provided using the local processor, which is a RISC processor having two embedded 
DMA controllers. The local processor is designated with model number 405 and is available 
5 from Motorola, Inc, of Phoenix, Arizona. 

The conduit between the peripheral interface 804 is a simplified representation of a 
peripheral bus and may include switches, routers, and network devices but are not shown to 
avoid complicating the herein disclosure. For example, if the peripheral interface is 
implemented using a fibre channel interface then at least one port provided by a switch would 
10 be part of the conduit between the peripheral interface and the host. 

The data selected for recoverability includes all device configuration data that change 
Q during operation, such as state, remapping and wear-leveling information, control block 
XI information, and the like, although the range or type of data structures is not intended to limit 
^ the invention in any way. 

IS The above steps are interrupt-driven and do not necessarily occur sequentially (or in 

\y. any particular order). For instance, some structures may have already been built early on 
^ before the Base Block search, or maybe built within the middle of the search process (or even 
\il after) depending upon numerous conditions. 

,j While the invention has been described in conjunction with a specific best mode, it is 

2& to be understood that many alternatives, modifications, and variations will be apparent to 
those skilled in the art in light of the above description. Accordingly, it is intended to 
embrace all such alternatives, modifications, and variations that fall within the spirit and 
scope of the included claims. All matters hither-to-fore set forth or shown in the 
accompanying drawings are to be interpreted in an illustrative and non-limiting sense. 
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